Netinfo Security ›› 2018, Vol. 18 ›› Issue (1): 15-22.doi: 10.3969/j.issn.1671-1122.2018.01.003

• Orginal Article • Previous Articles     Next Articles

An Enhanced Security Framework of Software Defi ned Network Based on Attribute-based Encryption

Yue SHI1(), Xianglong LI2, Fangfang DAI1   

  1. 1.China Academy of Information and Communications Technolog, Beijing 100191, China
    2. Chifeng Public Security Bureau Network Security Defend Detachment, Chifeng Inner Mongolia 024000, China
  • Received:2017-11-10 Online:2018-01-20 Published:2020-05-11

Abstract:

As the development of the information network, cloud computing, big data, virtualization technology pushing several of new applications emerged. As a novel network architecture, Software defined network (SDN) provided the separation of control plane and data plane, thus controlling the hardware by the software platform which in the central controller, to realize the flexible deployment of network resource. In the process of SDN developing and application, its open architecture exposed more and more security problem, how to build a secure SDN becomes the focus of attention. Based on the hierarchical SDN architecture and characteristics, this paper analyzes the security threats that may face the SDN application layer, control layer, resource layer and interface layer. In order to solve these security threats, this paper presents the corresponding defense ability, and forms a whole SDN security architecture. Adopting an attribute-based encryption method, the paper also puts forward an enhanced access control strategy.

Key words: software defined network, security threats, fine-grained access control

CLC Number: